Grants a user group permissions on databases and database accounts.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
yundun-bastionhost:AttachDatabaseAccountsToUserGroup |
update |
*All Resource
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| InstanceId |
string |
Yes |
The instance ID of the bastion host. Note
You can invoke the DescribeInstances operation to query this parameter. |
bastionhost-cn-zvp282aly06 |
| RegionId |
string |
No |
The region ID of the bastion host. Note
For the mapping between region IDs and region names, see Regions and zones. |
cn-hangzhou |
| UserGroupId |
string |
Yes |
The ID of the user group to which you want to grant permissions. |
2 |
| Databases |
array<object> |
No |
The array of database objects. Note
A maximum of 10 databases and 10 database accounts are supported. You can leave the database accounts unspecified. If no accounts are specified, permissions are granted at the database level. |
|
|
object |
No |
|||
| DatabaseId |
string |
No |
The ID of the database instance to authorize. |
58 |
| DatabaseAccountIds |
array |
No |
The array of database account IDs. |
|
|
string |
No |
The database account ID. |
["1","2","3"] |
|
|
No |
The project ID. |
Request parameter data structure
Database object array
| Field | Type | Description |
| DatabaseId | string | The database ID. |
| DatabaseAccountIds | array[string] | The array of account IDs. A maximum of 10 accounts are supported. |
The following is an example of this parameter.
[
{"DatabaseId":"1"} // Authorize the database only
{"DatabaseId":"2","DatabaseAccountIds":["1","2","3",...]}, // Authorize the database and accounts
{"DatabaseId":"5","DatabaseAccountIds":[]} // Not supported
]
Response elements
|
Element |
Type |
Description |
Example |
|
object |
|||
| RequestId |
string |
The unique request ID generated by Alibaba Cloud for this request. |
5D0EB759-CB0A-537D-A2CC-13A9854FA08D |
| Results |
array<object> |
The call results of the operation. |
|
|
array<object> |
|||
| Code |
string |
The error code. A value of OK indicates that the authorization was successful. Other values indicate that the authorization failed. |
OK |
| DatabaseAccounts |
array<object> |
The list of database account information. |
|
|
object |
|||
| Code |
string |
The error code. If the value is `OK`, the authorization was successful. Other values indicate that the authorization failed. |
OK |
| DatabaseAccountId |
string |
The ID of the database account. |
8 |
| Message |
string |
The error message. |
NULL |
| DatabaseId |
string |
The database instance ID. |
2 |
| Message |
string |
The error message. |
NULL |
| UserGroupId |
string |
The user group ID. |
1 |
Examples
Success response
JSON format
{
"RequestId": "5D0EB759-CB0A-537D-A2CC-13A9854FA08D",
"Results": [
{
"Code": "OK",
"DatabaseAccounts": [
{
"Code": "OK",
"DatabaseAccountId": "8",
"Message": "NULL"
}
],
"DatabaseId": "2",
"Message": "NULL",
"UserGroupId": "1"
}
]
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | InvalidParameter | The argument is invalid. | The argument is invalid. |
| 500 | InternalError | An unknown error occurred. | An unknown error occurred. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.